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earned patent term adjustment. See 37 CFR 1.704(b). 
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3. Q Copies of the certified copies of the priority documents have been received in this National Stage 

application from the International Bureau (PCT Rule 17.2(a)). 
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DETAILED ACTION 

Priority 

1 . No claim for priority has been made in this application. 

2. The effective filing date for the subject matter defined in the pending claims in 
this application is 12/07/2000. 

Claim Rejections - 35 USC § 103 

The following is a quotation of 35 U.S.C. 103(a) which forms the basis for all 
obviousness rejections set forth in this Office action: 

(a) A patent may not be obtained though the invention is not identically disclosed or described as set 
forth in section 102 of this title, if the differences between the subject matter sought to be patented and 
the prior art are such that the subject matter as a whole would have been obvious at the time the 
invention was made to a person having ordinary skill in the art to which said subject matter pertains. 
Patentability shall not be negatived by the manner in which the invention was made. 

3. Claim 1 - 5, 8, 9 - 1 3, 1 6, 1 7 - 21 and 24 are rejected under 35 U.S.C. 1 03(a) as 
being unpatentable over Wu (U.S. Patent Number 5,774,551), hereinafter referred to as 
Wu. 

4. As per claims 1 , 9 and 1 7, Wu discloses an authentication method, product and 
system comprising: 

a. generating a first security context in response to a first user authentication; 
generating a second security context in response to a second user authentication (Wu: 
see for example(s), Column 2 Line 8- 14 and Column 17 Line 1 - 14: Wu first discloses 
-multiple-authentication-services in conjunction with-multiple login.-Wu teaches- 
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authentication tokens (e.g. personal identification number and password) (Wu: see for 
example(s), Column 2 Line 8-14) and the associated account attributes (e.g. account 

-^xpiratioMlate^^^c^ 

resources, or services the login user is authorized to access) (Wu: see for example(s), 
Column 17 Line 1 - 14). Both of authentication token and account attribute are 
equivalent to the desired security context), 

b. said second security context aggregates said first security context and a security 
context corresponding to an identity in said second user authentication (Wu: see for 
example(s), Column 3 Line 11-14 and Column 6 Line 17-22. TABLE 1, Column 17 
Line 40-44, Column 10 Line 33-35 and Column 19, Line 54-56: Wu teaches a 
unified login method to perform multiple login functions that are transparent to the user. 
The unified login provides multiple authentication services as well as the associated 
multiple account services (Wu: see for example(s), Column 3 Line 11-14, Column 6 
Line 17 - 22, TABLE 1 and Column 17 Line 40 - 44). The user is granted access to the 
services only after the composite security contexts (in light of multiple login) are 
authenticated and validated. This is also based upon the condition that each 
respective control flag of authentication service (or account service) is set as required 
instead of optional in the configuration file (Wu: see for example(s), Column 8 Line 61 - 
66, TABLE 1 and Column 1 7 Line 40 - 44, Column 1 0 Line 33 - 35 and Column 1 9, 
Line 54 - 56). 

5. Wu teaches the composite security context derived from the multiple login can 
use any given identity corresponding tarthe unified login ID as equivalent to a single 
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login. Wu does not teach the aggregated security context must be corresponding to an 
identity in second user authentication. 

L\a//th ilH-h a\/o_hoon-nh\/ir>i iQ-tr> -t h ^..n^rc r^ n-nf..r> r Hingr\/-Qj(ill.jn..th g > g rt-gf 
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the time the invention was made to modify the unified login ID to be the identity of 
second user authentication because both of login IDs are merely served as the unique 
identifiers. 

7. As per claims 2, 10, and 18, Wu teaches the claimed invention as described 
above (see claim 1, 9 and 17, respectively). Wu further teaches: saving said first 
security context (Wu: see for example(s), Column 3 Line 56 - 57). 

8. As per claims 3, 1 1 , and 19, Wu teaches the claimed invention as described 
above (see claim 2, 10 and 18, respectively). Wu further teaches: saving said first 
security context comprises the step of pushing said first security context on a stack (Wu: 
see for example(s), Column 6 Line 64 - 67 and Column 7 Line 1 - 4). 

9. As per claims 4, 12, and 20, Wu teaches the claimed invention as described 
above (see claim 1, 9 and 17, respectively). Wu further teaches: receiving a user logoff 
(Wu: see for example(s), Column 19 Line 60 - 64). 

10. As per claims 5, 13, and 21 , Wu teaches the claimed invention as described 
above (see claim 4, 12 and 20, respectively). Wu further teaches: destroying said 
second security context in response to said step of receiving said user logoff (Wu: see 
for example(s), Column 19 Line 60 - 64). 

11. As per claims 8, 16, and 24, Wu teaches the claimed invention as described 
above~(see claim 1 , 9~and 17, respectively); Wu further teaches: determining ah access 
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permission in response to said second security context (Wu: see for example(s), 
Column 3 Line 11 - Hand Column 6 Line 17-22. TABLE 1, Column 17 Line 40-44, 

-CoJuimUilU^^ 

12. Claim 6 - 7, 14 - 15, and 22 - 23 are rejected under 35 U.S.C. 103(a) as being 
unpatentable over Wu (U.S. Patent Number 5,774,551), hereinafter referred to as Wu, 
in view of Savill (Where can I find a Unix su like utility?), hereinafter referred to as Savill. 

13. As per claims 6, 14 and 22, Wu teaches the claimed invention as described 
above (see claim 2, 10 and 18, respectively). Wu teaches destroying all security 
contexts created by multiple authentication services in response to a request of unified 
logout. Wu does not teach reverting to said first security context in response to a user 
logoff. 

14. Savill teaches reverting to said first security context in response to a user logoff 
(Savill: see for example, Line 1 - 5). 

1 5. It would have been obvious to the person of ordinary skill in the art at the time the 
invention was made to combine the teaching of Savill within the system of Wu because 
Savill discloses a good idea from "Unix su" (substitute user or super-user) that allows 
the user to temporarily start applications running in the security context of a different 
account (e.g. first login as a regular user and subsequently login as the super-user for 
doing administrative work as a member of the administrators group) to avoid closing all 
open applications and log off all users. 
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16. As per claims 7, 15 and 23, Wu teaches the claimed invention as described 
above (see claim 6, 14 and 22, respectively). Savill further teaches reverting to said 



stack (Savill: see for example, Line 1 - 5). Same rationale for combination applies here 
as above in rejecting claims 6 and 14. 

Any inquiry concerning this communication or earlier communications from the 
examiner should be directed to Longbit Chai whose telephone number is 703-305-0710. 
The examiner can normally be reached on Monday-Friday 8:00am-5:00pm. 

If attempts to reach the examiner by telephone are unsuccessful, the examiner's 
supervisor, Ayaz R Sheikh can be reached on 703-305-9648. The fax phone number 
for the organization where this application or proceeding is assigned is 703-872-9306. 

Information regarding the status of an application may be obtained from the 
Patent Application Information Retrieval (PAIR) system. Status information for 
published applications may be obtained from either Private PAIR or Public PAIR. 
Status information for unpublished applications is available through Private PAIR only. 
For more information about the PAIR system, see http://pair-direct.uspto.gov. Should 
you have questions on access to the Private PAIR system, contact the Electronic 
Business Center (EBC) at 866-217-9197 (toll-free). 
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